Trojan-Downloader.Win32.Agent.hfo分析清除

豆豆网   技术应用频道   2008年03月07日    社区交流

内容摘要:该病毒为木马类,病毒运行后复制自身到系统目录。该病毒为下载型木马,首先读取下载列表,然后依照下载列表进行文件下载。

  http://219.152.120.***/m/003.exe

  http://219.152.120.***/m/004.exe

  http://219.152.120.***/m/005.exe

  http://219.152.120.***/m/006.exe

  http://219.152.120.***/m/007.exe

  http://219.152.120.***/m/008.exe

  http://219.152.120.***/m/009.exe

  http://219.152.120.***/m/10.exe

  http://219.152.120.***/m/11.exe

  http://219.152.120.***/m/12.exe

  http://219.152.120.***/m/13.exe

  http://219.152.120.***/m/14.exe

  http://219.152.120.***/m/15.exe

  http://219.152.120.***/m/16.exe

  http://219.152.120.***/m/17.exe

  http://219.152.120.***/m/18.exe

  http://219.152.120.**/m/19.exe

  http://219.152.120.**/m/20.exe

  http://219.152.120.**/m/21.exe

  http://219.152.120.**/m/22.exe

  http://219.152.120.**/m/23.exe

  http://219.152.120.**/m/24.exe

  http://219.152.120.**/m/25.exe

  http://219.152.120.***/f.exe

  http://219.152.120.***/k.exe

  http://219.152.120.***/a.exe

  http://219.152.120.***/d.exe

  http://219.152.120.***/m/001.exe

  http://219.152.120.***/m/002.exe

  http://219.152.120.***/m/003.exe

  http://219.152.120.***/m/004.exe

  http://219.152.120.***/m/005.exe

  http://219.152.120.***/m/006.exe

  http://219.152.120.***/m/007.exe

  http://219.152.120.***/m/008.exe

  http://219.152.120.***/m/009.exe

  http://219.152.120.***/m/10.exe

来源:豆豆网转载    作者:安天病毒分析组    责编:豆豆技术应用

正在加载评论...